A collection of web security testing tools to help security professionals and enthusiasts audit web applications with efficiency and ease.
Learn how to use M&R - a powerful tool for finding and replacing patterns in HTTP requests and responses.
Open LabExplore how Insecure Direct Object References can expose sensitive user information and learn to identify these vulnerabilities.
Open LabLearn how to filter information with HTTPQL and how it can be used to scan for hidden information.
Open LabExplore how improper content-type handling can lead to CSRF vulnerabilities, even with SameSite cookies.
Open LabLearn how to track session ID changes and monitor session behavior using Caido workflows for session management testing.
Open LabLearn the basics of how to identify reflected XSS with two different vulnerabilities in the same lab.
Open LabLearn how to use Caido's HTTP History to discover hidden information in responses and access unintended functionality.
Open Lab